silverstripe/subsites
Run multiple sites from a single SilverStripe install.
Activity
- Latest release
- 1y ago
- Total releases
- 78
- Cadence
- ~23 days
- Last 12 months
- 0
Reach
- Stars
- —
Details
- License
- BSD-3-Clause
- First release
- Nov 07, 2012
| Version | Released | |
|---|---|---|
4.0.1
patch
| ||
3.4.5
patch
| ||
3.4.4
patch
| ||
4.0.0
major
| ||
4.0.0-rc1
pre
| ||
3.4.3
patch
| ||
3.4.2
patch
| ||
3.4.1
patch
| ||
3.4.0
minor
| ||
4.0.0-beta1
pre
| ||
3.4.0-rc1
pre
| ||
3.3.1
patch
| ||
4.0.0-alpha1
pre
| ||
3.3.0
minor
| ||
3.2.4
patch
| ||
3.2.3
patch
| ||
2.8.7
patch
| ||
3.2.2
patch
| ||
3.2.1
patch
| ||
3.2.0
minor
| ||
3.1.2
patch
| ||
2.8.6
patch
| ||
3.1.1
patch
| ||
2.8.5
patch
| ||
3.1.0
minor
| ||
3.0.3
patch
| ||
2.8.4
patch
| ||
2.8.3
patch
| ||
3.0.2
patch
| ||
2.8.2
patch
| ||
3.0.1
patch
| ||
2.8.1
patch
| ||
3.0.0
major
| ||
3.0.0-rc1
pre
| ||
2.8.0
minor
| ||
2.8.0-beta1
pre
|
2.8.0-beta1
pre
Dependencies (6)
Changelog
Compare changes
|
|
3.0.0-beta1
pre
| ||
2.7.0
minor
| ||
2.6.1
patch
| ||
2.7.0-rc1
pre
| ||
2.6.0
minor
1 CVE
CVE-2022-42949
GHSA-cx45-565q-6qx8
Dec 19, 2022
SilverStripe Subsite weakens file permissions
5.4
/ 10
Medium
Network
Low
Low
None
Unchanged
Low
Low
None
The subsites module can weaken edit restrictions on some files and allow a malicious user to edit files they do not have edit rights to. This only affects projects with the subsites module installed. Regression testing should focus on custom file logic. Be advised that this is not a case of a user being able to edit a file in subsites they do not have access to. As a reminder, all separation of content achieved with the subsites module should be viewed as cosmetic and not appropriate for security-critical applications. Affected versions
2.0.0
2.0.1
2.0.2
2.1.0
2.1.1
2.2.0
2.2.1
2.2.2
2.3.0
2.3.1
2.3.2
2.3.3
+ 4 more Show less
2.4.0
2.4.1
2.5.0
2.6.0
Fixed in
2.6.1
References
Updated Apr 17, 2025 · Source: OSV.dev | ||
2.5.0
minor
1 CVE
CVE-2022-42949
GHSA-cx45-565q-6qx8
Dec 19, 2022
SilverStripe Subsite weakens file permissions
5.4
/ 10
Medium
Network
Low
Low
None
Unchanged
Low
Low
None
The subsites module can weaken edit restrictions on some files and allow a malicious user to edit files they do not have edit rights to. This only affects projects with the subsites module installed. Regression testing should focus on custom file logic. Be advised that this is not a case of a user being able to edit a file in subsites they do not have access to. As a reminder, all separation of content achieved with the subsites module should be viewed as cosmetic and not appropriate for security-critical applications. Affected versions
2.0.0
2.0.1
2.0.2
2.1.0
2.1.1
2.2.0
2.2.1
2.2.2
2.3.0
2.3.1
2.3.2
2.3.3
+ 4 more Show less
2.4.0
2.4.1
2.5.0
2.6.0
Fixed in
2.6.1
References
Updated Apr 17, 2025 · Source: OSV.dev | ||
2.4.1
patch
1 CVE
CVE-2022-42949
GHSA-cx45-565q-6qx8
Dec 19, 2022
SilverStripe Subsite weakens file permissions
5.4
/ 10
Medium
Network
Low
Low
None
Unchanged
Low
Low
None
The subsites module can weaken edit restrictions on some files and allow a malicious user to edit files they do not have edit rights to. This only affects projects with the subsites module installed. Regression testing should focus on custom file logic. Be advised that this is not a case of a user being able to edit a file in subsites they do not have access to. As a reminder, all separation of content achieved with the subsites module should be viewed as cosmetic and not appropriate for security-critical applications. Affected versions
2.0.0
2.0.1
2.0.2
2.1.0
2.1.1
2.2.0
2.2.1
2.2.2
2.3.0
2.3.1
2.3.2
2.3.3
+ 4 more Show less
2.4.0
2.4.1
2.5.0
2.6.0
Fixed in
2.6.1
References
Updated Apr 17, 2025 · Source: OSV.dev | ||
2.4.0
minor
1 CVE
CVE-2022-42949
GHSA-cx45-565q-6qx8
Dec 19, 2022
SilverStripe Subsite weakens file permissions
5.4
/ 10
Medium
Network
Low
Low
None
Unchanged
Low
Low
None
The subsites module can weaken edit restrictions on some files and allow a malicious user to edit files they do not have edit rights to. This only affects projects with the subsites module installed. Regression testing should focus on custom file logic. Be advised that this is not a case of a user being able to edit a file in subsites they do not have access to. As a reminder, all separation of content achieved with the subsites module should be viewed as cosmetic and not appropriate for security-critical applications. Affected versions
2.0.0
2.0.1
2.0.2
2.1.0
2.1.1
2.2.0
2.2.1
2.2.2
2.3.0
2.3.1
2.3.2
2.3.3
+ 4 more Show less
2.4.0
2.4.1
2.5.0
2.6.0
Fixed in
2.6.1
References
Updated Apr 17, 2025 · Source: OSV.dev | ||
2.3.3
patch
1 CVE
CVE-2022-42949
GHSA-cx45-565q-6qx8
Dec 19, 2022
SilverStripe Subsite weakens file permissions
5.4
/ 10
Medium
Network
Low
Low
None
Unchanged
Low
Low
None
The subsites module can weaken edit restrictions on some files and allow a malicious user to edit files they do not have edit rights to. This only affects projects with the subsites module installed. Regression testing should focus on custom file logic. Be advised that this is not a case of a user being able to edit a file in subsites they do not have access to. As a reminder, all separation of content achieved with the subsites module should be viewed as cosmetic and not appropriate for security-critical applications. Affected versions
2.0.0
2.0.1
2.0.2
2.1.0
2.1.1
2.2.0
2.2.1
2.2.2
2.3.0
2.3.1
2.3.2
2.3.3
+ 4 more Show less
2.4.0
2.4.1
2.5.0
2.6.0
Fixed in
2.6.1
References
Updated Apr 17, 2025 · Source: OSV.dev | ||
2.2.2
patch
1 CVE
CVE-2022-42949
GHSA-cx45-565q-6qx8
Dec 19, 2022
SilverStripe Subsite weakens file permissions
5.4
/ 10
Medium
Network
Low
Low
None
Unchanged
Low
Low
None
The subsites module can weaken edit restrictions on some files and allow a malicious user to edit files they do not have edit rights to. This only affects projects with the subsites module installed. Regression testing should focus on custom file logic. Be advised that this is not a case of a user being able to edit a file in subsites they do not have access to. As a reminder, all separation of content achieved with the subsites module should be viewed as cosmetic and not appropriate for security-critical applications. Affected versions
2.0.0
2.0.1
2.0.2
2.1.0
2.1.1
2.2.0
2.2.1
2.2.2
2.3.0
2.3.1
2.3.2
2.3.3
+ 4 more Show less
2.4.0
2.4.1
2.5.0
2.6.0
Fixed in
2.6.1
References
Updated Apr 17, 2025 · Source: OSV.dev | ||
2.3.2
patch
1 CVE
CVE-2022-42949
GHSA-cx45-565q-6qx8
Dec 19, 2022
SilverStripe Subsite weakens file permissions
5.4
/ 10
Medium
Network
Low
Low
None
Unchanged
Low
Low
None
The subsites module can weaken edit restrictions on some files and allow a malicious user to edit files they do not have edit rights to. This only affects projects with the subsites module installed. Regression testing should focus on custom file logic. Be advised that this is not a case of a user being able to edit a file in subsites they do not have access to. As a reminder, all separation of content achieved with the subsites module should be viewed as cosmetic and not appropriate for security-critical applications. Affected versions
2.0.0
2.0.1
2.0.2
2.1.0
2.1.1
2.2.0
2.2.1
2.2.2
2.3.0
2.3.1
2.3.2
2.3.3
+ 4 more Show less
2.4.0
2.4.1
2.5.0
2.6.0
Fixed in
2.6.1
References
Updated Apr 17, 2025 · Source: OSV.dev | ||
1.4.2
patch
| ||
2.3.1
patch
1 CVE
CVE-2022-42949
GHSA-cx45-565q-6qx8
Dec 19, 2022
SilverStripe Subsite weakens file permissions
5.4
/ 10
Medium
Network
Low
Low
None
Unchanged
Low
Low
None
The subsites module can weaken edit restrictions on some files and allow a malicious user to edit files they do not have edit rights to. This only affects projects with the subsites module installed. Regression testing should focus on custom file logic. Be advised that this is not a case of a user being able to edit a file in subsites they do not have access to. As a reminder, all separation of content achieved with the subsites module should be viewed as cosmetic and not appropriate for security-critical applications. Affected versions
2.0.0
2.0.1
2.0.2
2.1.0
2.1.1
2.2.0
2.2.1
2.2.2
2.3.0
2.3.1
2.3.2
2.3.3
+ 4 more Show less
2.4.0
2.4.1
2.5.0
2.6.0
Fixed in
2.6.1
References
Updated Apr 17, 2025 · Source: OSV.dev | ||
2.3.0
minor
1 CVE
CVE-2022-42949
GHSA-cx45-565q-6qx8
Dec 19, 2022
SilverStripe Subsite weakens file permissions
5.4
/ 10
Medium
Network
Low
Low
None
Unchanged
Low
Low
None
The subsites module can weaken edit restrictions on some files and allow a malicious user to edit files they do not have edit rights to. This only affects projects with the subsites module installed. Regression testing should focus on custom file logic. Be advised that this is not a case of a user being able to edit a file in subsites they do not have access to. As a reminder, all separation of content achieved with the subsites module should be viewed as cosmetic and not appropriate for security-critical applications. Affected versions
2.0.0
2.0.1
2.0.2
2.1.0
2.1.1
2.2.0
2.2.1
2.2.2
2.3.0
2.3.1
2.3.2
2.3.3
+ 4 more Show less
2.4.0
2.4.1
2.5.0
2.6.0
Fixed in
2.6.1
References
Updated Apr 17, 2025 · Source: OSV.dev |